Tech Support > Computers & Technology > Virus & Worms > RootKit?
RootKit?
Posted by James Egan on June 8th, 2006


On 8 Jun 2006 09:31:51 -0700, "4Q" <paul_zest@hushmail.com> wrote:

To be fair, he didn't say he could fix it. Only that it was visible
(if not running) and therefore detectable and fixable albeit with
difficulty if it's buried deep and encrypted amongst a mass of other
stuff.


Jim.


Posted by 4Q on June 8th, 2006


Jimbo wrote:
I've seen him spouting his shitaz about solving a severe case
of r00tkititis with a clean boot CD all over the net, yet he steps
on his dick again with previous posts about the halting problem
and not being able to detect malware reliably... Yes I will get
around to citing all his crap and adding a running commentry.

In the meanwhile here are a few clues on webposts posts he's made
with the infamous "rootkit.com" ... You remember??? The URL that he
censors in my posts with "...***********" Maybe he just censors
my posts!!! *heh*

April 5, 2006 SecuiTeam blogs

April 19, 2006 11:43pm "bashing_information_sharing" post

May 14th, 2006 7:51pm darknode.co.uk blogs

You can either wait for me to setup the
"Kunt Wismer Security Shitegeist" or go0gle for his
malware domain mentioning h-ipocrisy (hypocrisy).


4Q

p.s. Kunt, I noticed you spell Kernel as "Kernal" in
a few of your expert posts. Maybe your bartdisk
rootkit-away solution is only for "kernal" r00tkit
problems. *grin*


Posted by kurt wismer on June 9th, 2006


4Q wrote:
so you're saying you can't find me a message where i said rootkits were
obsolete... so you were talking out of your arse...

y'know, i keep telling people i'm not an expert... i don't know what
more i have to do to get people to accept that...

of course, the lack of formal credentials doesn't mean i'm wrong just as
the presence of formal credentials doesn't mean someone else is
automatically right... credentials may be ok if you're trying to get
someone to take your word on something, but as far as i'm concerned if
they need to take your word for it then you've done a piss poor job of
explaining yourself...

i don't have credentials because i never sought them out... i don't
value them the way most of the lemmings do... if i'm not right about
something then credentials won't change that fact and if i am right
about something then credentials won't help people understand how/why
i'm right...

yeah they've authored material... they've authored malware and profited
from it...

"who is my audience"...

i don't suppose it ever occurred to you that i wasn't writing for the
benefit of the security community but rather for the benefit of those
who are new to those concepts...

[snip]
if people want to visit that site they should be perfectly capable of
clicking the link in *your* messages, they shouldn't need mine...

it's not like i'm committing censorship or anything, your words are
still freely available to anyone who wants to listen to you...

yeah, right... a proper source who's now complaining about people
associating 'rootkits' with malware... maybe if he hadn't hijacked a
malware term in the first place people wouldn't be associating his work
with malware now...

oh, and while we're on the subject of stopping things, how about you
stop attacking my reputation and instead work on the merit of my actual
arguments (hint: you can't judge that by looking at where the arguments
are coming from or by seeing how closely they agree with some supposed
expert opinion)... or does meritocracy not figure into the bastard
philosophy? 'cause the ad hominems are getting old....

--
"it's not the right time to be sober
now the idiots have taken over
spreading like a social cancer,
is there an answer?"

Posted by kurt wismer on June 9th, 2006


James Egan wrote:
exactly... solving the stealth problem is easy, solving the broader
malware problem isn't... once the stealth is neutralized the complexity
reduces to that of dealing with non-stealth malware which can still be a
challenge...

--
"it's not the right time to be sober
now the idiots have taken over
spreading like a social cancer,
is there an answer?"

Posted by kurt wismer on June 9th, 2006


4Q wrote:
once you get around the stealth, most stealthkit instances in practice
will be detectable with known malware scanning techniques and most of
those that aren't will be detectable with formal change detection
techniques...

i'm disappointed that you've so thoroughly misunderstood my posts on the
influence of the halting problem... especially considering your claimed
background studying comp.sci. concepts... i was hoping i'd done a better
job of explaining it... on the other hand you have displayed a
remarkable resistance to understanding what censorship really is so
maybe it's no fault of my own...

or maybe i'm human and make mistakes...

i meant to use the printer friendly url, since that's a link dead-end...

not a link... (apparently you're still not clear on the difference
between a domain name and a link)

darkNET.co.uk - also not a link...

???! domains != links... i've stated this repeatedly, it's a linking
policy, therefore it applies only to *links*...

--
"it's not the right time to be sober
now the idiots have taken over
spreading like a social cancer,
is there an answer?"

Posted by 4Q on June 9th, 2006


kurt wismer wrote:

<snip>

*hehe* Kunt me ol' chum, things are going exactly to plan as far as
I'm concerned. I just keep waggling my line in the ACV water here
and you keep biting. I won't be long before I haul your carcass onto
land for a merciless 'Bastard Philosophy' clubing. *lol*

Kunt Wismer's Security Shitegeist will iron out any creases in
explainations for you. Thank you, for being so anal I'm gonna have
fun with this *HAHAHAHAHAHA* ;]]


We will see when the punters take a vote at your Security Shitegeist.
;]]


And they are an authoritive source that share their valuable knowledge
with thousands of right minded law abiding individuals eagre to read
how such things work.

So people now have a choice, *erm* Shall I go to Kunt Wismers
blog rant and find out everything about r00tkits (the way he's
talking he must be in charge of the security industry, let alone
being *the* EXPERT!) "what is a worm", what is a rootkit" etc
or shall I go to Hoglund & Butlers professionally presented
security website http://rootkit.com (they even have a book on
the subject!) *Choices *Choices It's so fucking difficult
to know which to choose.


<snip>

*haha* I'm sure Barlev and Bryant had some good points
but hey, who gives a shit when the mission is to satirise
and kick the stuffing out of the mark.



You're welcome ;]]

4Q


Posted by 4Q on June 9th, 2006


kunt wismer wrote:


*Wow* Problem solved! Okay guys pack up your hacker bags
Kunt Wismer *the* Expert has made you all redundant. His square
head has managed to plug the hacker round holes! Game over!!!


And you so expediently apply this policy to my http://rootkit.com
posts, yet manage to allow yourself a few lapses in policy
enforcement when it comes to your own posting at various places.
Can we all say "h-ipocrisy" (hypocrisy) or "kernal" *grin*


4Q


Posted by Laura Fredericks on June 9th, 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 9 Jun 2006 01:18:00 -0700, "4Q" <paul_zest@hushmail.com>
wrote in post to Kurt:
LMFAO! This is why I adore you, so. ;-)

-----BEGIN PGP SIGNATURE-----
Version: PGP 8.1

iQA/AwUBRImO5KRseRzHUwOaEQIZ0wCgtobhGUDfWqrMLHH55K0q5j HLPn0AoL+r
pS1gjyeag42pGx+mNfCTnyq+
=M20a
-----END PGP SIGNATURE-----

--
Laura Fredericks
4Q's "wicked evil bitch of satire, parody, humor and trollism"

PGP key ID - DH/DSS 2048/1024: 0xC753039A

alt.comp.virus photo gallery:
http://www.queenofcyberspace.com/acvgallery/

usenet flamewars:
http://www.queenofcyberspace.com/usenet/

Remove CLOTHES to reply.

Posted by Shane on June 9th, 2006


Laura Fredericks wrote:
But does 'Bryant' work? You know: Bryant Bryant Bryant Bryant Bryant!

Wait a mo, you only say it three times, don't you!

Shane



Posted by kurt wismer on June 10th, 2006


4Q wrote:
uh huh, sure... *solved*... just like those same techniques *solved* the
virus problem... oh yeah, and i hear they can also solve death and taxes...

must you twist things so outlandishly?

not to mention the 'expert' bullshit *yet again*....

[snip]
yeah, sure... making errors and owning up to the fact is hypocrisy...

tell me something oh guru of gurus, when was the last time you owned up
to your own fallibility?

--
"it's not the right time to be sober
now the idiots have taken over
spreading like a social cancer,
is there an answer?"

Posted by kurt wismer on June 10th, 2006


4Q wrote:
[snip]
you're not the only one whose plans are working out...

yeah, yeah... kurt wismer, hot or not... whatever...

and lots of wrong minded law breaking individuals eager to spread such
things far and wide...

y'know, hoglund says that butler's stealthkit is one of the most widely
deployed stealthkits in the world and that rather than recompiling the
source people are just spreading the already compiled binaries available
for download on hoglund's site... yeah, they're authorities alright -
authorities on how to game the security community...

the way i talk? please.. i talk with confidence - it's a result of being
sure of myself... last time i checked, confidence and expertise were not
the same thing...

yeah, so they have a book... john mcafee has a book on viruses and other
threats to your data... what does that prove...

hmmm... come to think of it, i think i see a pattern emerging there...
wasn't tracker working on a book also? and barlev, i almost forgot he
had some crazy book plan too...

right... so merit will have nothing to do with it... you'll be stirring
up trouble and presenting things in a way that bares only the slightest
resemblance to reality (satire and realism don't really go together) not
because you're right, not because i'm wrong, but because it entertains
you... how very meaningful...

thanks for taking the rope i gave you and hanging yourself with it, mr.
self-admitted-troll...

--
"it's not the right time to be sober
now the idiots have taken over
spreading like a social cancer,
is there an answer?"

Posted by Laura Fredericks on June 13th, 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Sat, 10 Jun 2006 00:54:25 -0400, kurt wismer
<kurtw@sympatico.ca> wrote in post:
Did somebody say "HOT or NOT"? ;-)
http://www.hotornot.com/r/?eid=ALRYHEG&key=CAJ

-----BEGIN PGP SIGNATURE-----
Version: PGP 8.1

iQA/AwUBRI6h7qRseRzHUwOaEQJoqwCgw/mzN9Qht6cPw9Q9/lbaNIYPRVEAn0UM
lAbaLOmB62EH3LbBZrJZP8rr
=RnRi
-----END PGP SIGNATURE-----

--
Laura Fredericks
4Q's "wicked evil bitch of satire, parody, humor and trollism"

PGP key ID - DH/DSS 2048/1024: 0xC753039A

alt.comp.virus photo gallery:
http://www.queenofcyberspace.com/acvgallery/

usenet flamewars:
http://www.queenofcyberspace.com/usenet/

Remove CLOTHES to reply.

Posted by Laura Fredericks on June 13th, 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Tue, 13 Jun 2006 11:31:17 GMT, I wrote in post:
Hey, which one of you clowns keeps giving Dickhead a "10"? He's
got an 8.9!

-----BEGIN PGP SIGNATURE-----
Version: PGP 8.1

iQA/AwUBRI71CaRseRzHUwOaEQJYnACdHviMk4FsLXVpYdTlh9z0D3 UIOSIAnics
12x/OIvj0UyoSOg1cfuE/Qox
=9ycv
-----END PGP SIGNATURE-----

--
Laura Fredericks
4Q's "wicked evil bitch of satire, parody, humor and trollism"

PGP key ID - DH/DSS 2048/1024: 0xC753039A

alt.comp.virus photo gallery:
http://www.queenofcyberspace.com/acvgallery/

usenet flamewars:
http://www.queenofcyberspace.com/usenet/

Remove CLOTHES to reply.

Posted by user on June 16th, 2006


Laura Fredericks wrote:

.... bro, tell me is theire a code source that can correct its presence
and to hide slightly as a *.bin file when you flash bios from windows
then you put code that will give you oppurtunity to wake up the computer
and ... do we need cpu coding to manage the reste or just learning more
dos and net... what do u think. is it possible.

see you bro

Posted by 4Q on June 17th, 2006


kunt wismer wrote:

<snipped>

*Attention all*
Burn the printing press!!! king Kunt Wismer has decreed that you
shall only read his carefully censored texts.

</by royal accent of his self, Kunt Wismer>

*haha* "Sure of myself", "confidence" listen to yourself!


AV cuntz0r, nuff said. ;]]


*idiot* You are comparing Barlev and Tracker (vapourware books)
'Chapter zer0' via top independant publishers 'ACV Usenet-selfpress'
verses a well written text published by a top technical publishing
house: 'Addison-Wesley'



*HAHAHAHA* Fear my evil troll ways!


4Q ( Cyber-terrorist [troll division] )


Posted by Noel Paton on June 17th, 2006



"4Q" <paul_zest@hushmail.com> wrote in message
news:1150499051.427146.8120@c74g2000cwc.googlegrou ps.com...

I'm bored by this thread -
1) 4Q is using inane argument to refute rubbish
2) KW is using rubbish to refute inane argument

please guys - STFU, so we can all get to sleep?

--
Noel Paton (MS-MVP 2002-2006, Windows)

Nil Carborundum Illegitemi
http://www.crashfixpc.com/millsrpch.htm

http://tinyurl.com/6oztj

Please read http://dts-l.org/goodpost.htm on how to post messages to NG's


Posted by 4Q on June 17th, 2006


kunt wismer wrote:

<snipped>

*Attention all*
Burn the printing press!!! King Kunt Wismer has decreed that you
shall only read his carefully censored texts.

</by royal Kunt Wismer accent>

*haha* "Sure of myself", "confidence" listen to yourself!


AV cuntz0r, nuff said. ;]]


*idiot* You are comparing Barlev and Tracker (vapourware books)
'Chapter zer0' via top independant publishers 'ACV Usenet-selfpress'
verses a well written text published by a top technical publishing
house: 'Addison-Wesley'



*HAHAHAHA* Fear my evil troll ways!


4Q ( Cyber-terrorist [troll division] )


Posted by 4Q on June 17th, 2006


Noel Paton wrote:
This message was getting my full attention.

Then I got to the MVP bit *snigger*


4Q


Posted by Noel Paton on June 17th, 2006



"4Q" <paul_zest@hushmail.com> wrote in message
news:1150500830.003400.255070@u72g2000cwu.googlegr oups.com...
(whatever rocks your boat)

--
Noel Paton (MS-MVP 2002-2006, Windows)

Nil Carborundum Illegitemi
http://www.crashfixpc.com/millsrpch.htm


Posted by Shane on June 17th, 2006


Noel Paton wrote:
Hey, Noel! Ever read this lot?
http://tinyurl.com/nynlt

Shane







Similar Posts